General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Domain names in Security Policy

Does anyone know if it's possible to use a domain in a security policy? I know that I can use FQDN but what happens if I need to allow a wider range, such as *.zoom.us? Can this be done or am I out of luck?

BPry by Cyber Elite
  • 3584 Views
  • 4 replies
  • 0 Likes

MIB Value for Zone count

Hey all,

 

I've been digging around and just can't seem to find the answer to this so I'll ask here. I'd like know if there is an OID MIB value to the number of Zones currently configured on any particular firewall. I've browsed/search this OID: 1.3.6.

...

steveo by L3 Networker
  • 1979 Views
  • 0 replies
  • 0 Likes

GlobalProtect - Client Certificates Deployment

Greetings,

 

I have used the following article to distribute client certificates for GlobalProtect:

 

https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Issue-Certificates-to-GlobalProtect-Devices/ta-p/53642

 

My understanding is that with

...

Creid by L0 Member
  • 1849 Views
  • 2 replies
  • 0 Likes

QoS and interfaces - some conception advice needed

Hello

 

I will migrate fom PA200 to PA500. I have some local networks (DMZ, Wifi for students, Wifi for stuff, LANs)

I need to use QoS but I need some advice with that.

 

I know that I can controll only on outgoing interfaces but I have no idea how to get

...

_slv_ by L4 Transporter
  • 2653 Views
  • 6 replies
  • 0 Likes

Resolved! VM-300 Steps validation

Can some please these are the initial steps for setting up VM-300 in NSX?

 

1) Register auth codes for VM's

2) Download the base-image on he VM that will host  VM-300 firewall

3) When download of sofware is complete I should UUID an dCPUUID

4) After base

...

Mounting Orientation for PA-500 (Vertical - Wall Mount)

Does anyone know if the PA-500 can be mounted using a 19" Rack mall mount bracket?

(Front = Up) (Back = Down).

Using something similar to this?

https://www.startech.com/Server-Management/Racks/2U-19in-Steel-Vertical-Wall-Mount-Equipment-Rack-Bracket~RK2

...

mjdut18 by L0 Member
  • 1386 Views
  • 1 replies
  • 0 Likes

User-ID causing high CPU

Hello People, 

 

My client has receently upgraded to 7.1.3 and now the management plane is constantly running 100% on all firewalls. 

 

This is the following message displayed and filling up the userid.log

 

2016-07-22 16:43:38.660 +0100 Error: pan_user_id

...

Looking to Learn Palo Alto

Looking for advice on cheapest way to learn Palo Alto? I am a consultant and dont have any Palo Alto licenses. Is a VM lab license affordable, is there trials or is ebay the best option?

 

Thanks in advance!

daveram by L0 Member
  • 4184 Views
  • 8 replies
  • 0 Likes

PA Eval license in Unetlab

Hi

 

I want to test PA in Unetlab 10.0-12

https://nbctcp.wordpress.com/2015/06/26/bypass-firewall/

But I don't have URL Filter eval license.

 

QUESTIONS

1. how to get eval license for 2 PA because I also need to test OSPF between 2 PAs

2. with eval license b

...

nbctcp by L1 Bithead
  • 2408 Views
  • 3 replies
  • 0 Likes

Resolved! How to add more one secondary NTP server

Hello community,

 

It is possible to add more one secondary NTP server ?

I need to add two ips (ntp server) like a secondary ntp servers, it is possible?

 

In PANOS 6.1.10.

 

Best Regards

Andres Padilla

Apadilla by L3 Networker
  • 2107 Views
  • 2 replies
  • 0 Likes

How to prefer 1 ISP for one application

I got why huge traffic is coming to port 3978.Application is identified as Panorama.
Its hge Gbs of traffic in one session.
The source IP is firewall management Ip and destination is Panorama IP.

But why i need to kill this session means, we have a setu

...

  • 24281 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels